Configuring 802.1X Authentication

Configuring 802.1X Authentication

Purpose

To review and configure 802.1X authentication for one or more ports using EAPOL (Extensible Authentication Protocol). 802.1X controls network access by enforcing user authorization on selected ports, which results in allowing or denying network access according to RADIUS server configuration.

Note: To configure EAP pass-through, which allows client authentication packets to be forwarded through the switch to an upstream device, 802.1X authentication must be globally disabled with the set dot1x command (“set dot1x” on page 26-18).

Commands

For information about...

Refer to page...

 

 

show dot1x

26-15

 

 

show dot1x auth-config

26-17

 

 

set dot1x

26-18

 

 

set dot1x auth-config

26-19

 

 

clear dot1x auth-config

26-20

 

 

show eapol

26-21

 

 

set eapol

26-23

 

 

clear eapol

26-23

 

 

show dot1x

Use this command to display 802.1X status, diagnostics, statistics, and reauthentication or initialization control information for one or more ports.

Syntax

show dot1x [auth-diag][auth-stats] [port [init reauth]] [port-string]

Parameters

auth‐diag

(Optional) Displays authentication diagnostics information.

auth‐stats

(Optional) Displays authentication statistics.

 

 

port init reauth

(Optional) Displays the status of port initialization and reauthentication

 

control for the port.

 

 

port‐string

(Optional) Displays information for specific port(s). For a detailed

 

description of possible port‐string values, refer to Port String Syntax Used

 

in the CLI” on page 7‐1.

 

 

Defaults

If no parameters are specified, 802.1X status will be displayed.

SecureStack C3 Configuration Guide 26-15

Page 761
Image 761
Enterasys Networks 9034313-07 manual Configuring 802.1X Authentication, Show dot1x, Auth‐diag, Auth‐stats, Port init reauth